CVE-2026-29923
The pstrip64.sys driver in EnTech Taiwan PowerStrip <=3.90.736 allows local users to escalate privileges to SYSTEM via a crafted IOCTL request enabling unprivileged users to map arbitrary physical memory into their address space and modify critical kernel structures.
- Affected products
- Powerstrip
- Fix
- Available
- CVSS 3.1
- 7.8 HIGH
- EPSS
- 0.1% (3th percentile)
- Weakness
- CWE-269
- NVD status
- Awaiting Analysis
- Published
- 2026-04-09
CVE-2026-29923 at NVD
4 known exploits for CVE-2026-29923
Proof-of-concept code and exploit modules indexed by Sploitus